日志内容已自动填写,请写明“问题描述”及“验证码”后点击“上报日志”。

问题描述: 
验证码:   

发表于 2013/7/11 11:21:14 编号:57598
问题描述:病毒
QQKav系统诊断报告!--2012.7.1
生成时间:2013-7-11  上午 11:24:39
操作系统:Windows XP 5.1_2600.2:Service Pack 3
IE版本:Internet Explorer v6.0.2900.5512
本机内存:1023.17 MB - 可用内存:540.03 MB
==================================================
系统启动项:
ctfmon.exe|C:\WINDOWS\system32\ctfmon.exe|
 QQPCTray |"F:\QQPCMgr\7.6.8687.221\QQPCTray.exe"/regrun|

系统进程列表:
[System Process]    
System              
\SystemRoot\System32\smss.exe
\??\C:\WINDOWS\system32\csrss.exe
\??\C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
F:\QQPCMgr\7.6.8687.221\QQPCRTP.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\explorer.exe
C:\Program Files\alipay\alieditplus\AlipaySecSvc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\System32\alg.exe
F:\QQPCMgr\7.6.8687.221\QQPCTray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\alipay\SafeTransaction\Alipaybsm.exe
E:\网络游戏\传奇私服\热血传奇\九彩骄阳.exe
C:\Program Files\alipay\SafeTransaction\AlipaySafeTran.exe
F:\聊天工具\QQProtect\Bin\QQProtect.exe
F:\聊天工具\bin\QQ.exe
F:\聊天工具\bin\TXPlatform.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\explorer.exe
G:\工具包\QQkav\qqkav.exe
C:\WINDOWS\system32\conime.exe

未知IE加载项:
未知BHO插件:
未知系统Hooks插件:
未知SSODL插件:
未知系统服务:
Adobe Flash Player Update Service|AdobeFlashPlayerUpdateSvc|C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe|
Alipay security service|AlipaySecSvc|C:\Program Files\alipay\alieditplus\AlipaySecSvc.exe|
Contrl Center of Storm Media|ccosm |C:\Program Files\StormII\stormliv.exe /asservice|
NVIDIA Display Driver Service|nvsvc |C:\WINDOWS\system32\nvsvc32.exe|
QQPCMgr RTP Service |QQPCRTP |F:\QQPCMgr\7.6.8687.221\QQPCRtp.exe -r|


发表于 2013/7/10 22:08:47 编号:57597
问题描述:病毒
克隆不了qq空间音乐

发表于 2013/7/10 16:54:02 编号:57596
问题描述:病毒
QQKav系统诊断报告!--2012.7.1
生成时间:2013-7-10  16:57:32
操作系统:Windows XP 5.1_2600.2:Service Pack 3
IE版本:Internet Explorer v8.0.6001.18702
本机内存:1.75 GB - 可用内存:1.14 GB
==================================================
系统启动项:
ctfmon.exe|C:\WINDOWS\system32\ctfmon.exe|
360sd |"C:\Program Files\360\360sd\360sdrun.exe"|
RTHDCPL |RTHDCPL.EXE |
360Safetray |"C:\Program Files\360\360Safe\safemon\360Tray.exe" /start|
InterPass_ABChina |C:\Program Files\95599 Certificate Tools\FEITIAN extend key\ISCertD_abchina.exe|

系统进程列表:
[System Process]    
System              
\SystemRoot\System32\smss.exe
csrss.exe           
\??\C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
svchost.exe         
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
svchost.exe         
svchost.exe         
C:\Program Files\360\360Safe\deepscan\ZhuDongFangYu.exe
C:\WINDOWS\system32\ati2evxx.exe
C:\Program Files\VIA Telecom\VIAService.exe
C:\WINDOWS\system32\searchindexer.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\360\360Safe\safemon\360tray.exe
C:\Program Files\95599 Certificate Tools\FEITIAN extend key\ISCertD_abchina.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\360\360sd\360sd.exe
C:\Program Files\360\360Safe\SoftMgr\SoftManagerLite.exe
C:\Program Files\360\360sd\360rp.exe
C:\Program Files\360\360Safe\netmon\360gmoptmtray.exe
F:\Program Files\SogouInput\Components\AddressSearch\1.0.0.1178\SGImeGuard.exe
F:\Program Files\SogouInput\6.5.0.9181\SogouCloud.exe
D:\All Users\Tencent\QQMusic\moleplugin\tadb.exe
C:\WINDOWS\system32\svchost.exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\360zip$Temp\360$0\三亚海天盛宴官方屏蔽锦集.exe
C:\Program Files\360\360Safe\360DiagnoseScan.exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\360zip$Temp\360$1\qqkav_newhua.exe
C:\Program Files\360\360zip\360zip.exe
C:\WINDOWS\explorer.exe

未知IE加载项:
{00000000-12C9-4305-82F9-43058F20E8D2}
{00000000-12C9-4305-82F9-43058F20E8D2}
{00000ADA-7E0D-47C1-986C-F017D09C4304}
|VideoUrlSniffer Class|C:\Documents and Settings\All Users\Application Data\Thunder Network\XMP4\Addins\VideoUrlSniffer.2.2.0.138.(712).dll
{000DA090-57AA-424B-A8F0-621B7C08B8F4}
{000DA090-57AA-424B-A8F0-621B7C08B8F4}
{08D512D2-7D97-4E22-B7DB-82791106C086}
|AliCertDOCtrl Class|C:\Documents and Settings\Administrator\Application Data\alipay\cf\alicdo.dll
{0C27ADC4-E826-4620-A3A7-990D7E05545F}
|迅雷FLV视频嗅探及下载支持代理|D:\All Users\Thunder Network\Thunder\BHO\XlBrowserAddin1.0.8.71.dll
{0EA37B17-6B8B-4085-8257-F3A4AA69C27A}
|迅雷FLV视频嗅探及下载支持|D:\All Users\Thunder Network\Thunder\BHO\XlBrowserAddin1.0.8.71.dll
{1D63232D-4F15-4A42-890D-EE617AA1537D}
|WWPicUploadCtrl Class|D:\All Users\AliWangWang\7.20.37C\modules\1685\WWPictureUpload.dll
{1DABF8D5-8430-4985-9B7F-A30E53D709B3}
|InstallHelper Class|C:\WINDOWS\system32\MMInstaller.dll
{2318C2B1-4965-11D4-9B18-009027A5CD4F}
{2318C2B1-4965-11D4-9B18-009027A5CD4F}
{26C3F8B0-0217-46A1-AB2D-A1B494E71402}
|SSOLoginCtrl Class|D:\All Users\AliWangWang\7.21.02C\AliIMSSOLogin.dll
{4E430174-1673-4FF3-BF28-A3B37F6573E7}
|Windows Desktop Search Combo Control|C:\Program Files\Windows Desktop Search\wdsShell.dll
{50F4150A-48B2-417A-BE4C-C83F580FB904}
|AgentForAndroid Class|C:\Program Files\Common Files\Tencent\QQPhoneManager\1.8.101.2154\npQQPhoneManagerExt.dll
{5C4500A9-0BE9-434E-B807-118E6E5EA3B6}
{5C4500A9-0BE9-434E-B807-118E6E5EA3B6}
{5DA34F59-FBFF-4666-99F5-599CD7B9A640}
|abcCtl4RA Class|C:\WINDOWS\system32\abcPrintCtl4RA.dll
{5EF7B131-C278-4034-BC88-2CE28B128681}
|QQLiveOcx Class|C:\Program Files\Tencent\QQLive\LiveOcx\LiveOcx.dll
{5FFF24BC-DC02-4808-B4E0-A8E2C93FE407}
|迅雷发行IE支持|D:\All Users\Thunder Network\Thunder\BHO\xlfxctrl1.0.1.64.dll
{643CA2E5-0B5C-4373-A48F-5175C95FE232}
|abcCertFirm Class|C:\WINDOWS\system32\abcCertFirm.dll
{695891DE-E87C-4942-9628-7217D3EFBD2D}
|KKMediaCtrl Class|C:\Program Files\Common Files\Thunder Network\KanKan\KKMediaCtrl.1.0.0.2.(279).dll
{6EE9CD3E-A386-4DAE-9737-A759DBF927AE}
|Thunder59Agent Class|C:\Program Files\Common Files\Thunder Network\UserAgent\UserAgent2.0.2.2.dll
{802F530B-A8F6-4631-AE49-6BACAAC6373E}
|XunleiBHO Class|D:\All Users\Thunder Network\Thunder\BHO\XunleiBHO7.2.12.3824.dll
{82404416-4C60-47F8-BA06-90BA7261C3AE}
|yy_checker|C:\Program Files\Common Files\duowan\yy4.0\YYSSO\1.0.0.3\npChecker.dll
{8C891026-0BE9-434E-B807-118E6E5EA3B6}
|SetupCtrl Class|C:\WINDOWS\Downloaded Program Files\7968328\BaiduSetupAx_0.dll
{94C3E4BB-A261-4A83-B437-EA6F7A28CA68}
{94C3E4BB-A261-4A83-B437-EA6F7A28CA68}
{96CD6DA7-17F2-4576-82B0-BE4526FB7D6B}
{96CD6DA7-17F2-4576-82B0-BE4526FB7D6B}
{98174BE7-6448-442D-8E86-CEB1C2EB8188}
|PowerUtilityXABC Control|C:\PROGRA~1\ABCIBS~1.3\POWERE~1.OCX
{9EFF1953-9694-47B1-AEF6-B2A3FE8BFE9C}
|VersionDetector Class|C:\Program Files\Common Files\Thunder Network\KanKan\kkvd.1.0.0.2.(279).dll
{A8502600-B272-4F68-A67B-A0305D46D297}
{A8502600-B272-4F68-A67B-A0305D46D297}
{A9332148-C691-4B9D-91FC-B9C461DBE9DD}
|APlayer3 Control|C:\Documents and Settings\All Users\Application Data\Thunder Network\APlayer\APlayer_3.1.0.618.dll
{AA58ED58-01DD-4D91-8333-CF10577473F7}
{AA58ED58-01DD-4D91-8333-CF10577473F7}
{ACACC6EB-1FBA-4E13-A729-53AEB2DF54F9}
|LiveDapCtrl Class|C:\Program Files\Common Files\Thunder Network\KanKan\LiveDapCtrl.1.0.0.9.(402).dll
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}
{BAEA0695-03A4-43BB-8495-C7025E1A8F42}
{BAEA0695-03A4-43BB-8495-C7025E1A8F42}
{BC5E4F38-63EF-4668-8499-F3DC78AF4EDC}
|VPCtrl Class|C:\Program Files\Common Files\Thunder Network\KanKan\KKVPCtrl.1.0.1.3.(279).dll
{C0A38404-3595-E5D5-4501-CE15EDF6819D}
{C0A38404-3595-E5D5-4501-CE15EDF6819D}
{C7DB51B4-BCF7-4923-8874-7F1A0DC92277}
{C7DB51B4-BCF7-4923-8874-7F1A0DC92277}
{D9EBCF5D-3F8F-4b6a-89BA-70577BE73C62}
|QQLive Class|C:\Program Files\Tencent\QQLive\LiveAPI.dll
{DD5BF6D1-6663-47E0-9DFA-5C343CAF178E}
|xoliimpl Class|C:\WINDOWS\xinstaller.dll
{EAAED308-7322-4B9B-965E-171933ADD473}
|SSOForPTLogin2 Class|C:\Program Files\Common Files\Tencent\TXSSO\1.2.2.7\Bin\npSSOAxCtrlForPTLogin.dll
{ED4CA2E5-0EEA-44C1-AD7E-74A07A7507A4}
|TimwpDll.TimwpCheck|C:\PROGRA~1\Tencent\QQ\bin\Timwp.dll
{F4AF4177-70D6-40DD-A228-5B62C0098E4C}
|PowerPasswordXABC Control|C:\PROGRA~1\ABCIBS~1.3\POWERE~1.OCX
{F7E55BDF-9528-46ba-B550-777859627591}
|QQLiveOcxShell Class|C:\Program Files\Tencent\QQLive\LiveOcx\LiveOcx.dll
{FAB99E27-DEC7-4E85-AC01-5A6C5F877826}
|PowerEditXABC Control|C:\PROGRA~1\ABCIBS~1.3\POWERE~1.OCX
{FEE3C8C5-9BEA-4079-AB36-63ECABFC7392}
|webmod Class|D:\All Users\AliWangWang\7.20.37C\alidcp.dll
未知BHO插件:
{00000ADA-7E0D-47C1-986C-F017D09C4304}
|VideoUrlSniffer Class|C:\Documents and Settings\All Users\Application Data\Thunder Network\XMP4\Addins\VideoUrlSniffer.2.2.0.138.(712).dll
{0EA37B17-6B8B-4085-8257-F3A4AA69C27A}
|迅雷FLV视频嗅探及下载支持|D:\All Users\Thunder Network\Thunder\BHO\XlBrowserAddin1.0.8.71.dll
未知系统Hooks插件:
未知SSODL插件:
未知系统服务:
Adobe Flash Player Update Service|AdobeFlashPlayerUpdateSvc|C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe|
Ati HotKey Poller |Ati HotKey Poller |C:\WINDOWS\system32\Ati2evxx.exe|
BDVB 更新服务 (BdvbmSvc)|BdvbmSvc|C:\Program Files\Baidu\VbUpdate\BdvbUpdate.exe /medsvc|
BDVB 更新服务 (BdvbSvc)|BdvbSvc |C:\Program Files\Baidu\VbUpdate\BdvbUpdate.exe /svc|
CDMA Device Service |CDMA Device Service |C:\Program Files\VIA Telecom\VIAService.exe|
Google 更新服务 (gupdate)|gupdate |"C:\Program Files\Google\Update\GoogleUpdate.exe" /svc|
Google 更新服务 (gupdatem)|gupdatem|"C:\Program Files\Google\Update\GoogleUpdate.exe" /medsvc|
主动防御|ZhuDongFangYu |"C:\Program Files\360\360Safe\deepscan\zhudongfangyu.exe"|


发表于 2013/7/9 18:32:21 编号:57595
问题描述:病毒
QQKav系统诊断报告!--2012.7.1
生成时间:2013-07-09  18:35:35
操作系统:Windows XP 5.1_2600.2:Service Pack 3
IE版本:Internet Explorer v8.0.6001.18702
本机内存:2.00 GB - 可用内存:1.50 GB
==================================================
系统启动项:
ctfmon.exe|C:\WINDOWS\system32\ctfmon.exe|
\\20111124-1453\EPSON L100 Series|C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIGTP.EXE /FU "C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\E_S38.tmp" /EF "HKCU"|
Service Manager.lnk |C:\Documents and Settings\All Users\「开始」菜单\程序\启动\Service Manager.lnk|

系统进程列表:
[System Process]    
System              
\SystemRoot\System32\SMSS.EXE
\??\C:\WINDOWS\system32\CSRSS.EXE
\??\C:\WINDOWS\system32\WINLOGON.EXE
C:\WINDOWS\system32\SERVICES.EXE
C:\WINDOWS\system32\LSASS.EXE
C:\WINDOWS\system32\IBMPMSVC.EXE
C:\WINDOWS\system32\ATI2EVXX.EXE
C:\WINDOWS\system32\SVCHOST.EXE
C:\WINDOWS\system32\SVCHOST.EXE
C:\WINDOWS\System32\SVCHOST.EXE
C:\Program Files\Intel\WiFi\bin\S24EvMon.exe
C:\WINDOWS\system32\SVCHOST.EXE
C:\WINDOWS\system32\ATI2EVXX.EXE
C:\WINDOWS\system32\SVCHOST.EXE
C:\WINDOWS\system32\SPOOLSV.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\system32\CTFMON.EXE
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Intel\WiFi\bin\EvtEng.exe
D:\Program Files\msde\binnMSSQL\Binn\sqlservr.exe
C:\WINDOWS\system32\SVCHOST.EXE
C:\WINDOWS\System32\ALG.EXE
C:\WINDOWS\system32\wbem\WMIPRVSE.EXE
C:\WINDOWS\System32\SVCHOST.EXE
D:\Program Files\Foxmail 7.0\Foxmail.exe
C:\Documents and Settings\Administrator\桌面\QQKAV.EXE
C:\WINDOWS\system32\conime.exe
C:\Program Files\internet explorer\IEXPLORE.EXE
C:\Program Files\internet explorer\IEXPLORE.EXE

未知IE加载项:
{0CDF07E7-6867-44E8-B4BC-6C66D92B6F5B}
{0CDF07E7-6867-44E8-B4BC-6C66D92B6F5B}
{0EA37B17-6B8B-4085-8257-F3A4AA69C27A}
{0EA37B17-6B8B-4085-8257-F3A4AA69C27A}
{108D3206-846A-4A93-BACB-F0572D043ED7}
{108D3206-846A-4A93-BACB-F0572D043ED7}
{219C3416-8CB2-491A-A3C7-D9FCDDC9D600}
{219C3416-8CB2-491A-A3C7-D9FCDDC9D600}
{4063BE15-3B08-470D-A0D5-B37161CFFD69}
{4063BE15-3B08-470D-A0D5-B37161CFFD69}
{43869BB3-22FD-4F15-9B46-238106BA2F4E}
{43869BB3-22FD-4F15-9B46-238106BA2F4E}
{4E430174-1673-4FF3-BF28-A3B37F6573E7}
|Windows Desktop Search Combo Control|C:\Program Files\Windows Desktop Search\wdsShell.dll
{5D578929-E74E-46A2-A810-4F33D011DC52}
{5D578929-E74E-46A2-A810-4F33D011DC52}
{6096E38F-5AC1-4391-8EC4-75DFA92FB32F}
{6096E38F-5AC1-4391-8EC4-75DFA92FB32F}
{70425897-213B-4a9a-943B-2EEFB2124E35}
{70425897-213B-4a9a-943B-2EEFB2124E35}
{7369D35A-5B70-4A5B-B789-B25FE09B4AF3}
{7369D35A-5B70-4A5B-B789-B25FE09B4AF3}
{7C6D5EE5-C859-4B49-8F7B-DE0927D1C3E9}
{7C6D5EE5-C859-4B49-8F7B-DE0927D1C3E9}
{802F530B-A8F6-4631-AE49-6BACAAC6373E}
{802F530B-A8F6-4631-AE49-6BACAAC6373E}
{82E5DF24-51E8-47CD-864A-F4BD5005AA73}
{82E5DF24-51E8-47CD-864A-F4BD5005AA73}
{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
{95B3F550-91C4-4627-BCC4-521288C52977}
{95B3F550-91C4-4627-BCC4-521288C52977}
{95B3F550-91C4-4627-BCC4-521288C52978}
{95B3F550-91C4-4627-BCC4-521288C52978}
{95B3F550-91C4-4627-BCC4-521288C52979}
{95B3F550-91C4-4627-BCC4-521288C52979}
{A8502600-B272-4F68-A67B-A0305D46D297}
|QvodExtend
{B0E2F470-0B07-48F0-B3B1-5749505FAE9B}
{B0E2F470-0B07-48F0-B3B1-5749505FAE9B}
{BFFB33B4-1DD5-496A-B49E-9948566E2006}
{BFFB33B4-1DD5-496A-B49E-9948566E2006}
{CCA281CA-C863-46EF-9331-5C8D4460577F}
{CCA281CA-C863-46EF-9331-5C8D4460577F}
{D719897A-B07A-4C0C-AEA9-9B663A28DFCB}
|iTunesDetector Class|C:\Program Files\iTunes\ITDetector.ocx
{DB8B2393-7A6C-4C76-88CE-6B1F6FF6FFE9}
{DB8B2393-7A6C-4C76-88CE-6B1F6FF6FFE9}
{DFEAF541-F3E1-4C24-ACAC-99C30715084A}
|Microsoft Silverlight|C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll
{E18FEC31-2EA1-49A2-A7A6-902DC0D1FF05}
|NameCtrl Class|C:\Program Files\Microsoft Office\OFFICE11\NAME.DLL
{E577393C-3468-4911-9DA0-484C3F4C47D7}
|Xunlei Digital Video DRM Control
{EF0D1A14-1033-41A2-A589-240C01EDC078}
|PPLive Lite Class|C:\Program Files\Internet Explorer\PPLite\plugin\1.0.1.1327\pplugin2.dll
{FDF88F55-88E5-AB9D-D616-C27967B4E1B4}
{FDF88F55-88E5-AB9D-D616-C27967B4E1B4}
未知BHO插件:
未知系统Hooks插件:
未知SSODL插件:
未知系统服务:
Adobe Flash Player Update Service|AdobeFlashPlayerUpdateSvc|C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe|
Ati HotKey Poller |Ati HotKey Poller |C:\WINDOWS\system32\Ati2evxx.exe|
Bonjour 服务|Bonjour Service |"C:\Program Files\Bonjour\mDNSResponder.exe"|
DCService.exe |DCService.exe |C:\Documents and Settings\All Users\Application Data\DatacardService\DCService.exe|
Intel(R) PROSet/Wireless Event Log|EvtEng|C:\Program Files\Intel\WiFi\bin\EvtEng.exe|
Intel(R) PROSet/Wireless WiFi Service|S24EventMonitor |C:\Program Files\Intel\WiFi\bin\S24EvMon.exe|
iPod 服务 |iPod Service|"C:\Program Files\iPod\bin\iPodService.exe"|
MSSQLServerADHelper |MSSQLServerADHelper |"C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe"|
Skype Updater |SkypeUpdate |"C:\program files\skype\Updater\Updater.exe"|
ThinkPad PM Service |IBMPMSVC|C:\WINDOWS\system32\ibmpmsvc.exe|


发表于 2013/7/9 7:54:47 编号:57594
问题描述:病毒
QQKav系统诊断报告!--2012.7.1
生成时间:2013-7-9  上午 07:59:58
操作系统:Windows XP 5.1_2600.2:Service Pack 3
IE版本:Internet Explorer v8.0.6001.18702
本机内存:3.23 GB - 可用内存:2.39 GB
==================================================
系统启动项:
internat.exe|C:\windows\system32\internat.exe|
UploadTool|C:\NBMSClient\clienttool\UploadTool.exe -ShowWin|
BarClientTask |C:\NBMSClient\BarClientTask.exe -Startup|
InfoLoger |C:\WINDOWS\system32\InfoLoger.exe|
ClientPrc |C:\WINDOWS\system32\ClientPrc.exe|
MainPro |C:\MainPro.exe|

系统进程列表:
[System Process]    
System              
\SystemRoot\System32\smss.exe
\??\C:\WINDOWS\system32\csrss.exe
\??\C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\InfoLoger.exe
C:\WINDOWS\system32\ClientPrc.exe
C:\windows\system32\internat.exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\_TT23263436.tmp\MainPro.exe
C:\NBMSClient\BarClientSafeCenter.exe
C:\NBMSClient\BarClientView.exe
C:\NBMSClient\BarMonitor\BarMonitor.exe
C:\MySP\常用软件\驱动精灵\DgService.exe
C:\WINDOWS\system32\KaraokeSer.exe
C:\WINDOWS\system32\svchost.exe
E:\聊天工具\QQ2013\QQProtect\Bin\QQProtect.exe
E:\聊天工具\QQ2013\bin\QQ.exe
E:\聊天工具\QQ2013\Bin\TXPlatform.exe
E:\聊天工具\多玩YY语音\YY.exe
E:\聊天工具\QQ2013\bin\QQExternal.exe
E:\聊天工具\多玩YY语音\6.3.0.5\yybrowser.exe
C:\WINDOWS\system32\taskmgr.exe
C:\sogouinput\6.2.0.7476\SogouCloud.exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX78.424\qqkav_newhua.exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX78.425\qqkav_newhua.exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX66.424\qqkav_newhua.exe

未知IE加载项:
{00000000-12C9-4305-82F9-43058F20E8D2}
{00000000-12C9-4305-82F9-43058F20E8D2}
{01B6ABAA-8BD5-4c79-AC43-36D48FF59329}
|{01B6ABAA-8BD5-4c79-AC43-36D48FF59329}|shunwangcq.dll
{1DABF8D5-8430-4985-9B7F-A30E53D709B3}
|InstallHelper Class|C:\WINDOWS\system32\MMInstaller.dll
{27DB443C-6F8C-40BB-9D42-A835300A32FE}
|BHOMain Class|C:\WINDOWS\system32\ShunIesafety.dll
{4958F3A2-1032-49AF-8BDC-FA4C0C0931ED}
|BHOApp Class|C:\WINDOWS\system32\bhoex.dll
{6E28339B-7C6E-47B6-AEB2-46BA53782379}
|SunWardIEsafe|C:\NBMSClient\SunwardIeSafe.dll
{77EEBB61-8868-4FA1-8A9D-AB54F43C7D92}
{77EEBB61-8868-4FA1-8A9D-AB54F43C7D92}
{82404416-4C60-47F8-BA06-90BA7261C3AE}
|yy_checker|C:\Program Files\Common Files\duowan\yy4.0\YYSSO\1.0.0.3\npChecker.dll
{AF9143FF-D8F3-4ACE-B736-4757B5918388}
|BHOApp Class|IEOptimize.dll
{B88CFE21-46DF-4DBE-A25D-82DA4DC91C21}
|BhoBBN Class|swaddresbar.dll
{BDEACC50-F56D-4D60-860F-CF6ED1766D65}
|FTNUpload Class|E:\聊天工具\QQ2013\TENCENT\TXFTN\TXFTNACTIVEX1.17.DLL
{D9EBCF5D-3F8F-4b6a-89BA-70577BE73C62}
|QQLive Class|E:\影音软件\QQ直播\LiveAPI.dll
{EAAED308-7322-4B9B-965E-171933ADD473}
|SSOForPTLogin2 Class|C:\Program Files\Common Files\Tencent\TXSSO\Bin\npSSOAxCtrlForPTLogin.dll
{ED4CA2E5-0EEA-44C1-AD7E-74A07A7507A4}
|TimwpDll.TimwpCheck|E:\聊天工具\QQ2013\bin\Timwp.dll
{FB5F1910-F110-11D2-BB9E-00C04F795683}
{FB5F1910-F110-11D2-BB9E-00C04F795683}
未知BHO插件:
{01B6ABAA-8BD5-4c79-AC43-36D48FF59329}
|{01B6ABAA-8BD5-4c79-AC43-36D48FF59329}|shunwangcq.dll
{27DB443C-6F8C-40bb-9D42-A835300A32FE}
|BHOMain Class|C:\WINDOWS\system32\ShunIesafety.dll
{6E28339B-7C6E-47B6-AEB2-46BA53782379}
|SunWardIEsafe|C:\NBMSClient\SunwardIeSafe.dll
{AF9143FF-D8F3-4ACE-B736-4757B5918388}
|BHOApp Class|IEOptimize.dll
{B88CFE21-46DF-4dbe-A25D-82DA4DC91C21}
|BhoBBN Class|swaddresbar.dll
未知系统Hooks插件:
未知SSODL插件:
未知系统服务:
DriverGenius PNP Service|DGPNPSEV|C:\MySP\常用软件\驱动精灵\DgService.exe|
NVIDIA Driver Helper Service|NVSvc |C:\WINDOWS\system32\nvsvc32.exe|
VIA Karaoke digital mixer Service|KaraokeService|C:\WINDOWS\system32\KaraokeSer.exe|


发表于 2013/7/9 4:31:42 编号:57593
问题描述:病毒
QQKav系统诊断报告!--2012.7.1
生成时间:2013-7-9  4:35:02
操作系统:Windows XP 5.1_2600.2:Service Pack 3
IE版本:Internet Explorer v8.0.6001.18702
本机内存:2.00 GB - 可用内存:833.37 MB
==================================================
系统启动项:
BAIDUMEDIA|F:\其他工具\百度影音\BaiduPlayer\BaiduPlayer.exe minimize|
internat|c:\windows\system32\internat.exe|
NvMediaCenter |RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit|
NvCplDaemon |RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup|
BaofengPlatform |"%CURRENTDIR%\StormPlayer\BaofengPlatform.exe" /autorun|
NetBarClient|C:\PROGRA~1\WH_CLI~1\WH_Update\WH_Updater.exe|
cfgcli|C:\Program Files\Client\cfgcli.exe|
update|C:\Program Files\Client\update\update.exe|
aat.bat |C:\Documents and Settings\Administrator\「开始」菜单\程序\启动\aat.bat|
NetDisk.lnk |C:\Documents and Settings\Administrator\「开始」菜单\程序\启动\NetDisk.lnk|

系统进程列表:
[System Process]    
System              
\SystemRoot\System32\smss.exe
\??\C:\WINDOWS\system32\csrss.exe
\??\C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\explorer.exe
C:\windows\system32\internat.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Client\cfgcli.exe
C:\Program Files\Client\update\update.exe
C:\PROGRA~1\WH_CLI~1\bin\WH_Client.exe
C:\WINDOWS\sdfox.exe
C:\Program Files\Client\ap.exe
C:\WINDOWS\system32\ntwksvr.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Richtech\Dlxp\RTDXMCLN.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Client\clisvc.exe
F:\聊天工具\歪歪\yy\YY.exe
F:\其他工具\QQ音乐\QQMusic\QQMusic.exe
F:\其他工具\QQ音乐\QQMusic\QQMusicExternal.exe
F:\聊天工具\歪歪\yy\6.3.0.4\yybrowser.exe
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\G3INU1PS\qqkav_newhua[1].exe
F:\聊天工具\QQ2013\QQ\bin\TXPlatform.exe
F:\聊天工具\QQ2012\QQ\Bin\QQ.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
F:\聊天工具\歪歪\yy\6.3.0.4\yyplatform.exe
F:\聊天工具\歪歪\yy\6.3.0.4\yyexternal.exe
F:\聊天工具\QQ2012\QQ\txupd.exe
C:\Program Files\Common Files\tencent\qqdownload\119\Tencentdl.exe
C:\Program Files\SogouInput\6.7.0.0163\PinyinUp.exe
C:\Program Files\SogouInput\6.7.0.0163\SGTool.exe
C:\Program Files\SogouInput\6.7.0.0163\SGDownload.exe
C:\Program Files\SogouInput\6.7.0.0163\SGTool.exe
F:\聊天工具\QQ2012\QQ\Bin\QQExternal.exe

未知IE加载项:
{00000000-12C9-4305-82F9-43058F20E8D2}
|QQDownload IE Left Helper|%CURRENTDIR%\QQDownload\QQIEHelper01.dll
{00000ADA-7E0D-47C1-986C-F017D09C4304}
|VideoUrlSniffer Class|%COMMON_APPDATA%\Thunder Network\XMP4\Core\Program\VideoUrlSniffer.2.2.0.136.(965).dll
{02E2D748-67F8-48B4-8AB4-0A085374BB99}
|PlayCtrl Class|%CURRENTDIR%\BaiduPlayer\xbdyy.dll
{05CB0B5A-57FA-4067-B405-E1ACCA3035DF}
|QMApiCli Class|F:\聊天工具\QQ2012\QQ音乐\QQMusicApi.dll
{116BA71C-8187-4F15-9A1F-C9D6289155D1}
|IFlashGetNetscapeEx Class|%APPDATA%\FlashGetBHO\FlashGetHook.dll
{1DABF8D5-8430-4985-9B7F-A30E53D709B3}
|InstallHelper Class|C:\WINDOWS\system32\MMInstaller.dll
{20E1725C-7237-41A9-954A-04DCCB1FD16C}
|EyeOnIE Class|%CURRENTDIR%\StormPlayer\MediaLibraryIcon.dll
{2974c985-8151-4de5-b23c-b875f0a8522f}
|JetCarNetscape Class|%APPDATA%\FlashGetBHO\FlashGetHook.dll
{5C4500A9-0BE9-434E-B807-118E6E5EA3B6}
{5C4500A9-0BE9-434E-B807-118E6E5EA3B6}
{5EF7B131-C278-4034-BC88-2CE28B128681}
|QQLiveOcx Class|F:\聊天工具\QQ2012\QQ直播\LiveOcx\LiveOcx.dll
{6B232760-90F1-41c3-9902-C8552C1D8A72}
|QQLiveFile Class|F:\聊天工具\QQ2012\QQ直播\LiveOcx\FileVersion.dll
{7956A63A-3FBC-8F70-3578-1A34BEDD5422}
|7956A63A-3FBC-8F70-3578-1A34BEDD5422 Class|%CURRENTDIR%\QvodPlayer\AddIn\{7956A63A-3FBC-8F70-3578-1A34BEDD5422}\QvodAddr.dll
{82404416-4C60-47F8-BA06-90BA7261C3AE}
|yy_checker|C:\Program Files\Common Files\duowan\yy4.0\YYSSO\1.0.0.3\npChecker.dll
{8C891026-0BE9-434E-B807-118E6E5EA3B6}
|SetupCtrl Class|%WINDOWS%\Downloaded Program Files\1145625\BaiduSetupAx_0.dll
{91D98C32-8C88-4DE0-8B12-C87C499FFB70}
|MiniXunleiBHO Class|%CURRENTDIR%\BHO\MiniXunleiBHO6.1.0.1920.dll
{A8502600-B272-4F68-A67B-A0305D46D297}
|QvodExtend|%CURRENTDIR%\QvodPlayer\QvodExtend\5.0.83.0\QvodExtend.dll
{A9332148-C691-4B9D-91FC-B9C461DBE9DD}
|APlayer3 Control|%COMMON_APPDATA%\Thunder Network\APlayer\APlayer_3.1.0.618.dll
{ACACC6EB-1FBA-4E13-A729-53AEB2DF54F9}
|LiveDapCtrl Class|%PROGRAM_FILES_COMMON%\Thunder Network\KanKan\LiveDapCtrl.1.0.0.10.(966).dll
{B070D3E3-FEC0-47D9-8E8A-99D4EEB3D3B0}
|FlashGetBHO|%APPDATA%\FlashGetBHO\FlashGetBHO.dll
{BB6FB655-B052-4119-9C62-7DD261408AC1}
|迅雷精简版下载支持|%CURRENTDIR%\BHO\MiniXunleiBHO6.1.0.1920.dll
{D9EBCF5D-3F8F-4b6a-89BA-70577BE73C62}
|QQLive Class|F:\聊天工具\QQ2012\QQ直播\LiveAPI.dll
{DD5BF6D1-6663-47E0-9DFA-5C343CAF178E}
|xoliimpl Class|%WINDOWS%\xinstaller.dll
{EAAED308-7322-4B9B-965E-171933ADD473}
|SSOForPTLogin2 Class|C:\Program Files\Common Files\Tencent\TXSSO\1.2.1.41\Bin\npSSOAxCtrlForPTLogin.dll
{EF0D1A14-1033-41A2-A589-240C01EDC078}
|PPLive Lite Class|C:\Program Files\Internet Explorer\PPLite\plugin\1.0.1.1518\pplugin2.dll
{F587310D-5306-494D-87E2-88334B46E781}
|Storm AxPlayer Class|%CURRENTDIR%\StormPlayer\webplayer\PlayerShell.dll
{F7E55BDF-9528-46ba-B550-777859627591}
|QQLiveOcxShell Class|F:\聊天工具\QQ2012\QQ直播\LiveOcx\LiveOcx.dll
23A860E9-0C41-4E01-9206-D3FC0E413645
23A860E9-0C41-4E01-9206-D3FC0E413645
未知BHO插件:
{00000000-12C9-4305-82F9-43058F20E8D2}
|QQDownload IE Left Helper|%CURRENTDIR%\QQDownload\QQIEHelper01.dll
{00000ADA-7E0D-47C1-986C-F017D09C4304}
|VideoUrlSniffer Class|%COMMON_APPDATA%\Thunder Network\XMP4\Core\Program\VideoUrlSniffer.2.2.0.136.(965).dll
{20E1725C-7237-41A9-954A-04DCCB1FD16C}
|EyeOnIE Class|%CURRENTDIR%\StormPlayer\MediaLibraryIcon.dll
{7956A63A-3FBC-8F70-3578-1A34BEDD5422}
|7956A63A-3FBC-8F70-3578-1A34BEDD5422 Class|%CURRENTDIR%\QvodPlayer\AddIn\{7956A63A-3FBC-8F70-3578-1A34BEDD5422}\QvodAddr.dll
{A8502600-B272-4F68-A67B-A0305D46D297}
|QvodExtend|%CURRENTDIR%\QvodPlayer\QvodExtend\5.0.83.0\QvodExtend.dll
{b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0}
|FlashGetBHO|%APPDATA%\FlashGetBHO\FlashGetBHO.dll
{BB6FB655-B052-4119-9C62-7DD261408AC1}
|迅雷精简版下载支持|%CURRENTDIR%\BHO\MiniXunleiBHO6.1.0.1920.dll
未知系统Hooks插件:
未知SSODL插件:
未知系统服务:
BFAssistantSvc|BFAssistantSvc|D:\PhoneAssistant\BFAssistantSvc.exe|
Communication Server|Communication Server|"C:\WINDOWS\system32\ntwksvr.exe"|
Fetion Channel Service|FetionPCCS|C:\Program Files\China Mobile\FetionBox\FetionPCCS.exe|
Logon Manager |AP|"C:\Program Files\Client\ap.exe"|
NVIDIA Display Driver Service|nvsvc |C:\WINDOWS\system32\nvsvc32.exe|
Security Service|Security Service|C:\Program Files\Client\Clisvc.exe|
Skype Updater |SkypeUpdate |"C:\program files\skype\Updater\Updater.exe"|
锐起无盘XP域登录服务|RTDXMCLN|C:\Program Files\Richtech\Dlxp\RTDXMCLN.exe|


发表于 2013/7/8 10:01:58 编号:57592
问题描述:病毒
QQKav系统诊断报告!--2012.7.1
生成时间:2013-7-8  10:05:11
操作系统:Windows XP 5.1_2600.2:Service Pack 3
IE版本:Internet Explorer v6.0.2900.5512
本机内存:2.00 GB - 可用内存:1.47 GB
==================================================
系统启动项:
ctfmon.exe|C:\WINDOWS\system32\ctfmon.exe|
360sd |"C:\Program Files\360\360sd\360sd.exe" /autorun|
aliim |F:\阿里旺旺\aliim.exe /run:auto|
360Safetray |"C:\Program Files\360\360Safe\safemon\360Tray.exe" /start|
Panasonic Device Monitor Wakeup|C:\Program Files\Panasonic\Device Monitor\dmwakeup.exe|
Panasonic Device Manager for Multi-Function Station software|C:\Program Files\Panasonic\MFStation\PCCMFSDM.exe|
Panasonic PCFAX for Multi-Function Station software|C:\Program Files\Panasonic\MFStation\KmPcFax.exe -1|
ePassAuto_ABChina |C:\Program Files\95599 Certificate Tools\FTSafe\CertD_abchina.exe|

系统进程列表:
[System Process]    
System              
\SystemRoot\System32\smss.exe
\??\C:\WINDOWS\system32\csrss.exe
\??\C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\360\360Safe\deepscan\ZhuDongFangYu.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\alipay\alieditplus\AlipaySecSvc.exe
C:\PROGRA~1\PANASO~1\LocalCom\LMSRVNT.EXE
C:\PROGRA~1\PANASO~1\TRAPMO~1\Trapmnnt.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\explorer.exe
C:\Program Files\360\360sd\360rp.exe
C:\Program Files\360\360sd\360sd.exe
C:\Program Files\360\360Safe\safemon\360tray.exe
C:\Program Files\Panasonic\Device Monitor\DMWakeup.exe
C:\Program Files\Panasonic\MFStation\PCCMFSDM.exe
C:\Program Files\95599 Certificate Tools\FTSafe\CertD_abchina.exe
C:\WINDOWS\system32\ctfmon.exe
F:\阿里旺旺\AliIM.exe
C:\Program Files\alipay\SafeTransaction\AlipaySafeTran.exe
C:\Program Files\alipay\SafeTransaction\Alipaybsm.exe
C:\Program Files\360\360Safe\SoftMgr\SoftManagerLite.exe
C:\WINDOWS\system32\conime.exe
F:\阿里旺旺\7.21.02C\miser\AliimSafe.exe
F:\娱乐\QQ杀毒\qqkav_newhua.exe

未知IE加载项:
{08D512D2-7D97-4E22-B7DB-82791106C086}
|AliCertDOCtrl Class|C:\Documents and Settings\Administrator\Application Data\alipay\cf\alicdo.dll
{1BC4E1F9-758D-4BDA-A7DE-A9E1DA7D1E41}
{1BC4E1F9-758D-4BDA-A7DE-A9E1DA7D1E41}
{1D63232D-4F15-4A42-890D-EE617AA1537D}
|WWPicUploadCtrl Class|F:\阿里旺旺\7.20.37C\modules\1685\WWPictureUpload.dll
{1DABF8D5-8430-4985-9B7F-A30E53D709B3}
|InstallHelper Class|C:\WINDOWS\system32\MMInstaller.dll
{5052B4D0-9DF7-45ef-88EF-F42C0EA33A43}
|QQPYChecker Class|C:\Program Files\Tencent\QQPinyin\1.1.1223.400\QQImeChecker.dll
{5DA34F59-FBFF-4666-99F5-599CD7B9A640}
|abcCtl4RA Class|C:\WINDOWS\system32\abcPrintCtl4RA.dll
{643CA2E5-0B5C-4373-A48F-5175C95FE232}
|abcCertFirm Class|C:\WINDOWS\system32\abcCertFirm.dll
{6EAAD146-39C4-4F5C-A0A7-DAA160ABD907}
{6EAAD146-39C4-4F5C-A0A7-DAA160ABD907}
{877204A2-B460-4d31-892B-A651B05D81F8}
{877204A2-B460-4d31-892B-A651B05D81F8}
{8EB7C6CB-2DA6-4ABE-B2EA-EAC5A372E757}
|SecCtrl Class|C:\WINDOWS\system32\aliedit\3.5.0.0\npAliSecCtrl.dll
{98174BE7-6448-442D-8E86-CEB1C2EB8188}
|PowerUtilityXABC Control|C:\PROGRA~1\ABCIBS~1.3\POWERE~1.OCX
{F486C5D5-5A91-43D2-B8B7-FD40A71FDB18}
{F486C5D5-5A91-43D2-B8B7-FD40A71FDB18}
{F4AF4177-70D6-40DD-A228-5B62C0098E4C}
|PowerPasswordXABC Control|C:\PROGRA~1\ABCIBS~1.3\POWERE~1.OCX
{FAB99E27-DEC7-4E85-AC01-5A6C5F877826}
|PowerEditXABC Control|C:\PROGRA~1\ABCIBS~1.3\POWERE~1.OCX
{FEE3C8C5-9BEA-4079-AB36-63ECABFC7392}
|webmod Class|C:\WINDOWS\system32\aliedit\3.5.0.0\alidcp.dll
未知BHO插件:
未知系统Hooks插件:
未知SSODL插件:
未知系统服务:
360 杀毒实时防护加载服务|360rp |"C:\Program Files\360\360sd\360rps.exe"|
Adobe Flash Player Update Service|AdobeFlashPlayerUpdateSvc|C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe|
Alipay security service|AlipaySecSvc|C:\Program Files\alipay\alieditplus\AlipaySecSvc.exe|
Panasonic Local Printer Service|Panasonic Local Printer Service|C:\PROGRA~1\PANASO~1\LocalCom\lmsrvnt.exe|
Panasonic Trap Monitor Service|Panasonic Trap Monitor Service|C:\PROGRA~1\PANASO~1\TRAPMO~1\Trapmnnt.exe|
主动防御|ZhuDongFangYu |"C:\Program Files\360\360Safe\deepscan\zhudongfangyu.exe"|


发表于 2013/7/8 0:00:21 编号:57591
问题描述:病毒
QQKav系统诊断报告!--2012.1.1
生成时间:2013-7-8  0:10:04
操作系统:Windows XP 5.1_2600.2:Service Pack 3
IE版本:Internet Explorer v6.0.2900.5512
本机内存:1.75 GB - 可用内存:1.23 GB
==================================================
系统启动项:
internat.exe|C:\windows\system32\internat.exe|
amd_dc_opt|C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe|
wbsxbjll.exe|C:\Documents and Settings\Administrator\「开始」菜单\程序\启动\wbsxbjll.exe|

系统进程列表:
[System Process]    
System              
\SystemRoot\System32\SMSS.EXE
\??\C:\WINDOWS\system32\CSRSS.EXE
\??\C:\WINDOWS\system32\WINLOGON.EXE
C:\WINDOWS\system32\SERVICES.EXE
C:\WINDOWS\system32\LSASS.EXE
C:\WINDOWS\system32\ATI2EVXX.EXE
C:\WINDOWS\system32\SVCHOST.EXE
C:\WINDOWS\system32\SVCHOST.EXE
C:\WINDOWS\System32\SVCHOST.EXE
C:\WINDOWS\system32\SVCHOST.EXE
C:\WINDOWS\system32\ATI2EVXX.EXE
C:\WINDOWS\EXPLORER.EXE
C:\windows\system32\INTERNAT.EXE
C:\Documents and Settings\Administrator\「开始」菜单\程序\启动\wbsxbjll.exe
C:\WINDOWS\18\hpad\excel.exe
C:\WINDOWS\18\ads\tray.exe
C:\WINDOWS\system32\SVCHOST.EXE
E:\聊天冲浪\腾讯QQ2011\bin\QQ.exe
E:\聊天冲浪\腾讯QQ2010\Bin\TXPlatform.exe
E:\聊天冲浪\腾讯QQ2011\bin\QQExternal.exe
E:\聊天冲浪\腾讯QQ2011\bin\QQExternal.exe
E:\讯闪10\Bin\HintClient.exe
E:\讯闪10\Bin\SafeCenter.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX00.765\qqkav.exe

未知IE加载项:
未知BHO插件:
未知系统Hooks插件:
未知SSODL插件:
未知系统服务:
Ati HotKey Poller |Ati HotKey Poller |C:\WINDOWS\system32\Ati2evxx.exe|
主动防御|ZhuDongFangYu |"C:\Program Files\360\360Safe\deepscan\zhudongfangyu.exe"|


发表于 2013/7/7 23:30:11 编号:57590
问题描述:病毒
QQKav系统诊断报告!--2012.7.1
生成时间:2013-7-7  23:32:12
操作系统:Windows XP 5.1_2600.2:Service Pack 3
IE版本:Internet Explorer v8.0.6001.18702
本机内存:894.43 MB - 可用内存:504.39 MB
==================================================
系统启动项:
ctfmon.exe|C:\WINDOWS\system32\ctfmon.exe|
NvCplDaemon |RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup|
link.lnk|g:\mm\「开始」菜单\程序\启动\link.lnk|
MZDDESK.lnk |g:\mm\「开始」菜单\程序\启动\MZDDESK.lnk|

系统进程列表:
[System Process]    
System              
\SystemRoot\System32\smss.exe
\??\C:\WINDOWS\system32\csrss.exe
\??\C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\Program Files\MyDrivers\DriverGenius2012\DgService.exe
C:\WINDOWS\System32\MZDRunClient.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
C:\WINDOWS\System32\MZDClient.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\vncserver.exe
G:\娱乐平台\WMBMENU3.EXE
G:\系统安全工具\轻松水印\EasyWatermark.exe
G:\系统安全工具\QQ病毒木马专杀工具\qqkav.exe

未知IE加载项:
{1DABF8D5-8430-4985-9B7F-A30E53D709B3}
|InstallHelper Class|C:\WINDOWS\system32\MMInstaller.dll
{5EF7B131-C278-4034-BC88-2CE28B128681}
|QQLiveOcx Class|C:\QQ2012\QQLive\LiveOcx\LiveOcx.dll
{6B232760-90F1-41c3-9902-C8552C1D8A72}
|QQLiveFile Class|C:\QQ2012\QQLive\LiveOcx\FileVersion.dll
{CAD5567C-C3E8-4CCE-AC64-70B29D20E151}
||C:\WINDOWS\KuDz31lJ.dll
{D9EBCF5D-3F8F-4b6a-89BA-70577BE73C62}
|QQLive Class|C:\QQ2012\QQLive\LiveAPI.dll
{F7E55BDF-9528-46ba-B550-777859627591}
|QQLiveOcxShell Class|C:\QQ2012\QQLive\LiveOcx\LiveOcx.dll
未知BHO插件:
{CAD5567C-C3E8-4cce-AC64-70B29D20E151}
||C:\WINDOWS\KuDz31lJ.dll
未知系统Hooks插件:
未知SSODL插件:
未知系统服务:
Adobe Flash Player Update Service|AdobeFlashPlayerUpdateSvc|C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe|
DriverGenius PNP Service|DGPNPSEV|C:\Program Files\MyDrivers\DriverGenius2012\DgService.exe|
MZDRunClient|MZDRunClient|C:\WINDOWS\System32\MZDRunClient.EXE|
NVIDIA Driver Helper Service|NVSvc |C:\WINDOWS\system32\nvsvc32.exe|
NVIDIA Update Service Daemon|nvUpdatusService|C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe|


发表于 2013/7/7 23:29:58 编号:57589
问题描述:病毒
QQKav系统诊断报告!--2012.7.1
生成时间:2013-7-7  23:31:42
操作系统:Windows XP 5.1_2600.2:Service Pack 3
IE版本:Internet Explorer v8.0.6001.18702
本机内存:894.43 MB - 可用内存:495.86 MB
==================================================
系统启动项:
ctfmon.exe|C:\WINDOWS\system32\ctfmon.exe|
NvCplDaemon |RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup|
link.lnk|g:\mm\「开始」菜单\程序\启动\link.lnk|
MZDDESK.lnk |g:\mm\「开始」菜单\程序\启动\MZDDESK.lnk|

系统进程列表:
[System Process]    
System              
\SystemRoot\System32\smss.exe
\??\C:\WINDOWS\system32\csrss.exe
\??\C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\Program Files\MyDrivers\DriverGenius2012\DgService.exe
C:\WINDOWS\System32\MZDRunClient.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
C:\WINDOWS\System32\MZDClient.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\vncserver.exe
G:\娱乐平台\WMBMENU3.EXE
G:\系统安全工具\轻松水印\EasyWatermark.exe
G:\系统安全工具\QQ病毒木马专杀工具\qqkav.exe

未知IE加载项:
{1DABF8D5-8430-4985-9B7F-A30E53D709B3}
|InstallHelper Class|C:\WINDOWS\system32\MMInstaller.dll
{5EF7B131-C278-4034-BC88-2CE28B128681}
|QQLiveOcx Class|C:\QQ2012\QQLive\LiveOcx\LiveOcx.dll
{6B232760-90F1-41c3-9902-C8552C1D8A72}
|QQLiveFile Class|C:\QQ2012\QQLive\LiveOcx\FileVersion.dll
{CAD5567C-C3E8-4CCE-AC64-70B29D20E151}
||C:\WINDOWS\KuDz31lJ.dll
{D9EBCF5D-3F8F-4b6a-89BA-70577BE73C62}
|QQLive Class|C:\QQ2012\QQLive\LiveAPI.dll
{F7E55BDF-9528-46ba-B550-777859627591}
|QQLiveOcxShell Class|C:\QQ2012\QQLive\LiveOcx\LiveOcx.dll
未知BHO插件:
{CAD5567C-C3E8-4cce-AC64-70B29D20E151}
||C:\WINDOWS\KuDz31lJ.dll
未知系统Hooks插件:
未知SSODL插件:
未知系统服务:
Adobe Flash Player Update Service|AdobeFlashPlayerUpdateSvc|C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe|
DriverGenius PNP Service|DGPNPSEV|C:\Program Files\MyDrivers\DriverGenius2012\DgService.exe|
MZDRunClient|MZDRunClient|C:\WINDOWS\System32\MZDRunClient.EXE|
NVIDIA Driver Helper Service|NVSvc |C:\WINDOWS\system32\nvsvc32.exe|
NVIDIA Update Service Daemon|nvUpdatusService|C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe|


 总共有57921篇日志,共5793页,第143  首页 上一页 下一页 尾页